csrf.domain.allow.none
- Module: cmas-restapi-core
- Description: Determines whether empty Origin/Referer headers are accepted. By default, the property is set to false, so that REST requests without Origin/Referer headers are blocked.
- Type: boolean
- Restart required: no
- System: yes
- Optional: no
- Example value: false (default value)
- Since: 6.11.2.2